At a Glance
- Tasks: Design and maintain security controls for high-availability, multi-cloud payment systems.
- Company: Join Form3, a leader in revolutionising payment technology.
- Benefits: Remote-first work, competitive salary, and a supportive team environment.
- Why this job: Make a real impact on security in cutting-edge payment systems.
- Qualifications: Expertise in cloud security, Linux, and strong engineering practices required.
- Other info: Inclusive workplace with a commitment to diversity and career growth.
The predicted salary is between 48000 - 72000 £ per year.
You’ll design, implement, and maintain defensive security controls that protect our high-availability, multi-cloud payment systems built on modern technologies. Your deep understanding of current threats, exploitation methods, and risk trade-offs will enable you to guide engineering teams on effective security features and ensure the right defensive measures are prioritised.
WE’RE LOOKING FOR
- You live on the linux command line.
- Your current research and experience back up your opinionated views on security practices and tradeoffs, which you love to openly debate and willingly share.
- You’re sought after for your security engineering expertise, having built multiple security controls that are actively proven in large production estates.
- Your security expertise extends to at least one public cloud, including essential security features and long-term security hardening practices.
- You appreciate building systems with good engineering practices and may have a background in software engineering at scale.
- You’re open to being a part of our on-call rota, ready to respond if we have a severe, platform-impacting security tooling failure or need second-line security incident response assistance.
Desirable
- You have an interest in offensive security, potentially including participation in CTFs and past experience as a red team operator or pen tester.
- You’ve developed security configurations in multiple public and private clouds.
- You’re a confident presenter and have accelerated appreciation of security across engineering teams.
- You regularly support building and analysis of threat models using a well defined process.
- You have experience securing data centers and networking devices.
- You’re terrified by supply chain and CI/CD security, but have good patterns for reducing the risks.
- Your engineering experiences matches Form3’s tech stack – including Golang and Terraform.
TECH STACK
- AWS, GCP, Azure and private Data Centers.
- Kubernetes, Helm, Flux.
- Distributed systems, mostly Golang based with CockroachDB and NATS.
- SIEM/SOAR, EDR, CNAPP, and a suite of open source tools with custom integrations.
THE TEAM
You will join a team of defensive security engineers directly maintaining and expanding security controls as well as advising the wider platform and application engineers within our R&D team. We report into the CISO and work alongside the other functional pillars of InfoSec.
INTERVIEW PROCESS
- Stage 1: Screening Call with Talent Team.
- Stage 2: Technical Interview – Building secure cloud architectures & team alignment.
- Stage 3: Technical Interview – Container and Linux Security, including a short pre-interview research topic.
We always aim to stick to the above process, however there may be occasions when an additional interview stage is needed for us to be sure we’re hiring the right person!
HIRING LOCATIONS
We are a remote-first organisation and are able to accept applications from the following countries; Germany, Netherlands, Spain, Portugal & UK. All new joiners start their first day in our office to collect the equipment needed to work remotely. We will also arrange for some of your team to come in to say hi, ensuring you’re supported and have a positive first few days with Form3!
ABOUT FORM3
Revolutionising the world of payments with our cutting-edge technology and innovative solutions.
OUR DEI&B COMMITMENT
We hire talented people from a variety of backgrounds and experiences and are committed to a work environment based on diversity, open-mindedness and curiosity. We’re united by our company values and we celebrate our unique differences. Our employee lifecycle processes are designed to embrace equal opportunity and prevent discrimination against our people regardless of personal characteristics. It is our strong belief that the more inclusive and belonging we are as a business, the better our work will be.
As an inclusive employer, we guarantee to interview all neurodiverse and physically disabled applicants who meet the minimum criteria for this role. We also encourage candidates to notify us of any reasonable adjustments that may be required during the recruitment process.
Senior Cloud Security Engineer in London employer: Form3
Contact Detail:
Form3 Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Cloud Security Engineer in London
✨Tip Number 1
Get your networking game on! Connect with folks in the industry, especially those already at Form3. LinkedIn is a goldmine for this. Don’t be shy to reach out and ask for insights about the company culture or the role!
✨Tip Number 2
Prepare for those technical interviews by brushing up on your cloud security knowledge. Dive into the latest trends and threats in the multi-cloud space. We want to see you confidently discuss your views on security practices!
✨Tip Number 3
Show off your passion for security! If you've participated in CTFs or have red team experience, make sure to highlight that. We love candidates who can bring real-world experience and a bit of flair to the table.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets the attention it deserves. Plus, we’re all about making the process as smooth as possible for you.
We think you need these skills to ace Senior Cloud Security Engineer in London
Some tips for your application 🫡
Show Off Your Skills: Make sure to highlight your experience with security controls and cloud environments in your application. We want to see how your skills align with our tech stack and the role's requirements!
Be Yourself: Don’t be afraid to let your personality shine through in your written application. We value open-mindedness and curiosity, so share your opinions on security practices and any interesting projects you've worked on.
Tailor Your Application: Customise your application to reflect the specific requirements of the Senior Cloud Security Engineer role. Mention your familiarity with Linux, cloud security features, and any relevant engineering practices that match our needs.
Apply Through Our Website: We encourage you to apply directly through our website for a smoother process. It helps us keep track of applications and ensures you don’t miss out on any important updates from us!
How to prepare for a job interview at Form3
✨Master the Tech Stack
Make sure you’re well-versed in the tech stack mentioned in the job description, especially AWS, GCP, Azure, and Kubernetes. Brush up on your knowledge of Golang and Terraform, as these will likely come up during technical discussions.
✨Show Off Your Security Expertise
Prepare to discuss your past experiences with security controls and how you've implemented them in large production environments. Be ready to share specific examples that highlight your understanding of current threats and risk trade-offs.
✨Engage in Technical Debates
Since the role involves sharing opinionated views on security practices, be prepared to engage in discussions about your perspectives. This could involve debating different security measures or sharing insights from your research, so don’t hold back!
✨Prepare for Scenario-Based Questions
Expect scenario-based questions, especially around container and Linux security. Think through potential security incidents and how you would respond, as well as how you would guide engineering teams in implementing effective security features.